Splunk Engineer
Tetrad Digital Integrity (TDI) is a leading-edge cybersecurity firm with a mission to safeguard and protect our customers from increasing threats and vulnerabilities in this digital age.
We are seeking a Splunk Engineer with a TS/SCI CI Poly clearance with the ability to support our client onsite at Alexandria Va.
QUALIFICATIONS:
3+ years of experience with Splunk Enterprise, including:
• Search Processing Language and the basics of writing Reports, Alerts, and Dashboards
• Management of infrastructure components (e.g., Indexers/Index Clusters, Search Heads, Universal Forwarders)
• Capability in ingesting and indexing new data sources
• Familiarity with app folders, editing configuration files (e.g., inputs.conf, props.conf), and resolving common configuration issues on both the GUI and terminal.
• 1+ years of experience with Linux/Windows OS system administration
• 1+ years of experience with drafting architectural and infrastructural diagrams
• Proficient in SharePoint, Jira, Confluence, and/or other ticket tracking software
• Ability to work closely with scrum teams and provide update/presentations on progress
• Availability for SCIF work 2-3 days per week
ADDITIONAL QUALIFICATIONS:
• Experience with Splunk Enterprise Security, User Behavior Analytics, and other security analytics tools
• Ability to use automation tools and Infrastructure-as-code to manage installations, pipelines, and scripting
• Experience with writing scripts and glue to tie together services, functionalities, and tools using technologies, including Python, Bash, Boto3, JSON, and YML and XML templates
• Experience with Amazon Web Services (AWS)
• Experience with additional tools, including Docker, Kubernetes, and Ansible
• Possession of excellent time management skills
• Possession of excellent verbal and written communication skills
• BS degree in CS, Computer Engineering, Mathematics, Statistics, or a related technical engineering field
• One of the following certifications and/or courses: Splunk Enterprise Certified Admin, Splunk Enterprise Certified Architect Certification, Splunk User Behavior Analytics, Splunk Enterprise Security
TDI does business with the federal government, which restricts employment to individuals who are either US citizens or lawful permanent residents of the United States.
“TDI is an Equal Opportunity Employer. Employment decisions are made based on individual qualifications, merit, and business needs. We do not discriminate in employment opportunities or practices based on race, color, religion, sex, or national origin, in accordance with applicable federal laws.”